|
247291
|
9.8 |
CRITICAL
Network
|
redswimmer
|
kiosksimple
|
KioskSimpleService.exe in RedSwimmer KioskSimple 1.4.7.0 suffers from a privilege escalation vulnerability in the WCF endpoint. The exposed methods allow read and write access to the Windows registry…
|
NVD-CWE-noinfo
|
CVE-2018-13101
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247292
|
6.1 |
MEDIUM
Network
|
trustwave
|
modsecurity
|
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue because it may only apply to environments without a Core Rule Set configured
|
CWE-79
Cross-site Scripting
|
CVE-2018-13065
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247293
|
5.5 |
MEDIUM
Local
|
linux debian
|
linux_kernel debian_linux
|
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3, which does not properly validate secs_per_zone in a corrupted f2fs image, as demonstrated by a divide-by-zero error.
|
CWE-369
Divide By Zero
|
CVE-2018-13100
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247294
|
5.5 |
MEDIUM
Local
|
linux debian opensuse canonical
|
linux_kernel debian_linux leap ubuntu_linux
|
An issue was discovered in fs/f2fs/inline.c in the Linux kernel through 4.4. A denial of service (out-of-bounds memory access and BUG) can occur for a modified f2fs filesystem image in which an inlin…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13099
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247295
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/f2fs/inode.c in the Linux kernel through 4.17.3. A denial of service (slab out-of-bounds read and BUG) can occur for a modified f2fs filesystem image in which FI_EXTRA_A…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13098
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247296
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3. There is an out-of-bounds read or a divide-by-zero error for an incorrect user_block_count in a corrupted f2fs image, le…
|
CWE-125 CWE-369
Out-of-bounds Read Divide By Zero
|
CVE-2018-13097
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247297
|
5.5 |
MEDIUM
Local
|
linux debian canonical opensuse
|
linux_kernel debian_linux ubuntu_linux leap
|
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.14. A denial of service (out-of-bounds memory access and BUG) can occur upon encountering an abnormal bitmap size when mountin…
|
CWE-125 CWE-787
Out-of-bounds Read Out-of-bounds Write
|
CVE-2018-13096
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247298
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.17.3. A denial of service (memory corruption and BUG) can occur for a corrupted xfs image upon encountering an i…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-13095
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247299
|
5.5 |
MEDIUM
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
An issue was discovered in fs/xfs/libxfs/xfs_attr_leaf.c in the Linux kernel through 4.17.3. An OOPS may occur for a corrupted xfs image after xfs_da_shrink_inode() is called with a NULL bp.
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-13094
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247300
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/xfs/xfs_icache.c in the Linux kernel through 4.17.3. There is a NULL pointer dereference and panic in lookup_slow() on a NULL inode->i_ops pointer when doing pathwalks o…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-13093
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|